NIST CSF 2.0 Category

RS.CO Incident Response Reporting and Communication

RS Respond | Deliver accurate and timely internal/external incident communications.

Implementation Objective

Provide trusted, timely incident updates to required stakeholders using approved channels and clear reporting criteria.

Implementation Actions

  • Define reportable events and channels.
  • Use approved communication templates.
  • Track notification approvals and timestamps.

Evidence Examples

  • Notification procedures
  • Communication templates
  • Notification log

Suggested Metrics

  • Notification timeliness
  • Communication defect rate